PT-2017-9187 · Graphicsmagick+2 · Graphicsmagick+2

Gustavo Grieco

·

Publicado

2016-09-28

·

Atualizado

2019-04-15

·

CVE-2016-7447

CVSS v3.1

9.8

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions GraphicsMagick versions prior to 1.3.25
Description A heap-based buffer overflow issue exists in the EscapeParenthesis function, allowing remote attackers to have an unspecified impact. The exact vectors used for the attack are unknown.
Recommendations For versions prior to 1.3.25, update to version 1.3.25 or later to resolve the issue.

Correção

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2018-2652
CVE-2016-7447
DLA-1401-1
DLA-651-1
MGASA-2016-0325
SUSE-SU-2016:2724-1

Produtos afetados

Alt Linux
Graphicsmagick
Suse